add-macos-statusbar

Warn

Audited by Socket on Mar 30, 2026

1 alert found:

Anomaly
AnomalyLOW
add/src/statusbar.swift

This Swift file is a menu bar controller that monitors and manages a specific user-level LaunchAgent (`com.nanoclaw`) by invoking `launchctl` to load/unload/kickstart a hardcoded plist under `~/Library/LaunchAgents/`. Within the provided code, there is no evidence of network exfiltration, credential theft, dynamic execution, or obfuscation; however, the explicit persistence-management actions and hardcoded agent control are strong security signals and warrant review of the LaunchAgent plist and its executed program. Overall risk is medium because the module can enable background execution, even though its payload logic is outside this snippet.

Confidence: 62%Severity: 60%
Audit Metadata
Analyzed At
Mar 30, 2026, 07:54 AM
Package URL
pkg:socket/skills-sh/qwibitai%2Fnanoclaw%2Fadd-macos-statusbar%2F@99fe3be0988d97c3a5d05f1ee7c7ab0766ca9221